Hola @SanMar!, probé lo sugerido por @Fank, pero se encuetra iniciado. Te dejo los reportes (Los dejo en dos post porque supera el limite de caracteres):
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-09-2019
Ran by Pedraza (administrator) on PEDRAZA-PC (Dell Inc. Latitude D630) (27-09-2019 15:24:35)
Running from C:\Users\Pedraza\Downloads
Loaded Profiles: Pedraza (Available Profiles: Pedraza)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Español (España, internacional)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems Incorporated -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
(AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe
(AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(Digital Care Solutions) [File not signed] C:\Program Files\BDServices\BitDefenderCOM.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Protexis Inc. -> Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239192 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [291568 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239192 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\RunOnce: [*Restore] => C:\Windows\System32\rstrui.exe [296960 2017-07-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\...\Drivers32: [msacm.l3acm] => C:\Windows\system32\l3codecp.acm [182272 2009-07-13] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2015-09-05] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2015-09-05] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\SysWOW64\tsccvid.dll [411480 2010-03-04] (TechSmith Corporation -> TechSmith Corporation)
HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com)
HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\64.0.3282.186\Installer\chrmstp.exe [2018-02-23] (Google Inc -> Google Inc.)
GroupPolicy: Restriction - Chrome <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {09FA8F41-1EF9-427C-9D24-E96487DC123E} - System32\Tasks\DLL-Files FixerASKUSER => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {0A383F70-723D-4EEC-A95C-92DC5F337546} - System32\Tasks\Games\UpdateCheck_S-1-5-21-1634448849-352997038-3322466404-1000 => {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} C:\Windows\System32\gameux.dll [2746368 2012-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {0B9A18D0-AED5-4D31-A161-3683D1CBCE36} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-07-16] (Google Inc -> Google Inc.)
Task: {24E80A78-8447-448C-8E83-E013DD610D99} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {268857D2-998A-4D7B-B607-9927D246EAFD} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe
Task: {2FD24FC2-B238-4CAD-89BE-BBA808B40CAE} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => Command(1): %windir%\system32\GWX\GWXConfigManager.exe -> /RefreshConfigAndContent
Task: {2FD24FC2-B238-4CAD-89BE-BBA808B40CAE} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => Command(2): C:\Windows\system32\GWX\GWXDetector.exe [ [ ]]
Task: {3708058B-2723-405B-BF11-5F6AA97D4ED7} - System32\Tasks\{47241BEF-2B2B-4B52-BB26-D06422D38D6E} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\Creative Cloud Uninstaller.exe"
Task: {466E71E6-F4BA-4896-848C-2646DDA44193} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {478FF4D3-19D5-45F8-9453-83AA27A96570} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {4FFC545E-F50B-45FF-A512-3C2B68D1448C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {516C3E37-D303-4C31-BD9E-74DB56539454} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-07-18] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {519CD28B-70C7-49EC-803C-DBEDDC6BF8A5} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => Command(1): %windir%\system32\GWX\GWXConfigManager.exe -> /RefreshConfig
Task: {519CD28B-70C7-49EC-803C-DBEDDC6BF8A5} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => Command(2): C:\Windows\system32\GWX\GWXDetector.exe [ [ ]]
Task: {540221A4-7963-463C-ACD9-01584DDD2AFD} - System32\Tasks\{8B23250A-CA6F-416D-A7B0-B7B7C8E1DA28} => C:\Windows\system32\pcalua.exe -a D:\Sims3SP01Setup.exe -d D:\
Task: {646B4E5E-0CC5-4E08-9CAE-1B4F234618B3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task: {64ECE348-87FA-4A19-BCFA-A786DB0A28AB} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {68041BB2-4998-42B2-88D1-195459036686} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {6D315B1E-FA9F-427F-9658-4BBC2B48E91B} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {6F9BAFE8-B5E3-4E21-B5CF-07AADA272801} - System32\Tasks\avastBCLRestart_chrome.exe => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Task: {753C47AE-EC5E-44B3-95A9-2C8E553F0E39} - System32\Tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary => C:\Program Files\Windows Media Player\wmpnscfg.exe
Task: {8277A646-9397-4C5F-89C4-64175C8F1831} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {92CF50E8-9A25-4CA8-B6FA-B670B9555CBB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-URT -> No File <==== ATTENTION
Task: {930DC825-72F9-463C-A6CD-7B78B6177216} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-07-16] (Google Inc -> Google Inc.)
Task: {95D8BF6C-93ED-4A78-9A7D-8400B1D3FC35} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1298776 2016-08-21] (AVAST Software a.s. -> Avast Software s.r.o.)
Task: {C158866D-ADAC-4D59-B5C9-57B443C68ABB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {C3039DA6-22F4-45ED-9309-66C679824494} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe
Task: {D5A8631F-5882-4B6D-92AC-D83AF3283C5E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {ED9CCFF8-4794-44D9-9179-96651745B9D7} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {F8981F90-51EE-41F9-A143-3B5394A68593} - System32\Tasks\Microsoft\Windows\Setup\gwx\rundetector => C:\Windows\system32\GWX\GWXDetector.exe
Task: {FD5C184E-F0AC-4A4E-BA7D-D4432F383F99} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {FE358FD7-B593-4909-9D60-4FD936868F2B} - System32\Tasks\{5283008F-BBEB-46DA-9873-8E98113EC806} => C:\Windows\system32\pcalua.exe -a D:\Sims3EP09Setup.exe -d D:\
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Acrobat Update Task.job => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task: C:\Windows\Tasks\AdobeAAMUpdater-1.0-Pedraza-PC-Pedraza.job => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
Task: C:\Windows\Tasks\AdobeGCInvoker-1.0-Pedraza-PC-Pedraza.job => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe
Task: C:\Windows\Tasks\AdwCleaner_onReboot.job => C:\Users\Pedraza\Desktop\adwcleaner_7.4.1.exe
Task: C:\Windows\Tasks\Antivirus Emergency Update.job => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe
Task: C:\Windows\Tasks\AVG EUpdate Task.job => C:\Program Files (x86)\AVG\Setup\avgsetupx.exe
Task: C:\Windows\Tasks\AVGPCTuneUp_Task_BkGndMaintenance.job => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{706D681B-FBF2-4C06-8D84-A624C4453F51}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
URLSearchHook: [S-1-5-21-1634448849-352997038-3322466404-1000] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-08-21] [Legacy]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @ASC/FileLabPlugin;version=1.1.33 -> C:\ProgramData\FileLab\Plugin\Framework\npFlPluginS.dll [2012-02-20] (Ascensio System SIA -> FileLab) [File not signed]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [No File]
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
Chrome:
=======
CHR Profile: C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2019-09-25] <==== ATTENTION
CHR Extension: (Presentaciones de Google) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-05-24]
CHR Extension: (Google Docs) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-24]
CHR Extension: (Google Drive) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-24]
CHR Extension: (YouTube) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-24]
CHR Extension: (Avast SafePrice) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-08-22]
CHR Extension: (Hojas de cálculo de Google) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-24]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-28]
CHR Extension: (Avast Online Security) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-24]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-24]
CHR Extension: (Gmail) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-24]
CHR Extension: (Chrome Media Router) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-18]
CHR Profile: C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default [2019-09-25]
CHR Extension: (Documentos) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-30]
CHR Extension: (Google Drive) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-30]
CHR Extension: (YouTube) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-30]
CHR Extension: (Avast SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-06-05]
CHR Extension: (Hojas de cálculo) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-30]
CHR Extension: (Documentos de Google sin conexión) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-05-01]
CHR Extension: (Avast Online Security) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-17]
CHR Extension: (AVG SafePrice | Comparaciones, ofertas y cupones) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2019-09-05]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-04-30]
CHR Extension: (Gmail) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30]
CHR Extension: (Chrome Media Router) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-20]
CHR Profile: C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-09-25]
CHR Extension: (AdBlock) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-13]
CHR Extension: (Avast Online Security) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-04-05]
CHR Extension: (Sistema de pagos de Chrome Web Store) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
CHR Extension: (Chrome Media Router) - C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-06]
CHR Profile: C:\Users\Pedraza\AppData\Local\Google\Chrome\User Data\System Profile [2019-09-25]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-02]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-02]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [323512 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7829784 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428264 2018-06-14] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R2 BitDefenderCOM; C:\Program Files\BDServices\BitDefenderCom.exe [1028096 2016-12-12] (Digital Care Solutions) [File not signed]
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272592 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [6598496 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [45920 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [38752 2019-01-10] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-07-02] (AVAST Software a.s. -> )
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-07-02] (AVAST Software a.s. -> )
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-07-02] (AVAST Software a.s. -> Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-07-02] (AVAST Software a.s. -> )
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [189544 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdrivera.sys [222288 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsha.sys [194224 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R0 avgblog; C:\Windows\System32\drivers\avgbloga.sys [339048 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniva.sys [51952 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
S3 avgHwid; C:\Windows\System32\drivers\avgHwid.sys [39352 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [152016 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [104256 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [78352 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [1020112 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [455464 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [203544 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [373944 2008-02-28] (AVG Netherlands B.V. -> AVG Technologies CZ, s.r.o.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30352 2017-12-18] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrascsibus; C:\Windows\System32\DRIVERS\dtultrascsibus.sys [30264 2016-05-19] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtultrausbbus; C:\Windows\System32\DRIVERS\dtultrausbbus.sys [47672 2016-05-19] (Disc Soft Ltd -> Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2019-08-27] (Malwarebytes Corporation -> Malwarebytes)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [199768 2019-09-17] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [225944 2019-09-26] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2019-09-27] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2019-09-27] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [106344 2019-09-27] (Malwarebytes Corporation -> Malwarebytes)
S3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [416768 2009-06-10] (Microsoft Windows -> Realtek Semiconductor Corporation )
R3 SrvHsfHDA; C:\Windows\System32\DRIVERS\VSTAZL6.SYS [292864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfV92; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfWinac; C:\Windows\System32\DRIVERS\VSTCNXT6.SYS [740864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-12-12] (Bitdefender SRL -> BitDefender S.R.L.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2016-03-29] (AVG Technologies CZ, s.r.o. -> AVG Netherlands B.V.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-13] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Three months (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-27 15:24 - 2019-09-27 15:34 - 000026778 _____ C:\Users\Pedraza\Downloads\FRST.txt
2019-09-27 15:21 - 2019-09-27 15:27 - 000000000 ___DC C:\FRST
2019-09-27 15:19 - 2019-09-27 15:20 - 001615872 _____ (Farbar) C:\Users\Pedraza\Downloads\FRST64.exe
2019-09-27 14:49 - 2019-09-27 15:14 - 000073584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2019-09-27 14:47 - 2019-09-27 14:47 - 000106344 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2019-09-26 10:47 - 2019-09-26 10:47 - 000225944 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2019-09-25 15:54 - 2019-09-27 15:10 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2019-09-25 15:40 - 2019-09-25 15:40 - 000278144 _____ C:\Windows\Minidump\092519-32916-01.dmp
2019-09-25 15:35 - 2019-09-25 15:35 - 000001633 _____ C:\Users\Pedraza\Desktop\ZHPCleaner (S).txt
2019-09-25 15:30 - 2019-09-25 15:30 - 000001880 _____ C:\Users\Pedraza\Desktop\AdwCleaner[S06].txt
2019-09-25 15:30 - 2019-09-25 15:30 - 000000794 _____ C:\Users\Pedraza\Desktop\ZHPCleaner.lnk
2019-09-25 15:18 - 2019-09-25 15:18 - 002812640 _____ (Kaspersky Lab) C:\Users\Pedraza\Downloads\ks3.020.0.14.1085aes_19549.exe
2019-09-25 15:09 - 2019-09-25 15:11 - 003328384 _____ (Nicolas Coolman) C:\Users\Pedraza\Downloads\ZHPCleaner.exe
2019-09-18 17:44 - 2019-09-25 19:54 - 000000000 ____D C:\Users\Pedraza\Downloads\ADOBEIllustratorCS6 Portable
2019-09-18 17:36 - 2019-09-18 17:36 - 000000000 ____D C:\Users\Pedraza\Downloads\Sims 3
2019-09-18 17:30 - 2019-09-18 17:42 - 257022327 _____ C:\Users\Pedraza\Downloads\ADOBEIllustratorCS6 Portable.rar
2019-09-18 16:16 - 2019-09-18 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Illustrator CS6
2019-09-18 16:05 - 2016-07-16 22:50 - 000000403 _____ C:\Users\Pedraza\Downloads\Importante!!.vbs
2019-09-18 13:25 - 2019-09-26 23:56 - 000001549 _____ C:\Users\Pedraza\Desktop\Malware.txt
2019-09-18 00:43 - 2019-09-19 19:19 - 000000288 _____ C:\Windows\Tasks\AdwCleaner_onReboot.job
2019-09-18 00:39 - 2019-09-18 00:40 - 007636680 _____ (Malwarebytes) C:\Users\Pedraza\Desktop\adwcleaner_7.4.1.exe
2019-09-18 00:33 - 2019-09-18 00:43 - 000000000 ___DC C:\AdwCleaner
2019-09-17 21:15 - 2019-09-17 21:15 - 000199768 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2019-09-17 21:13 - 2019-09-25 15:47 - 000002020 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-09-17 21:13 - 2019-09-25 15:47 - 000002020 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2019-09-17 21:13 - 2019-09-17 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-09-17 21:13 - 2019-09-17 21:13 - 000000000 ____D C:\Program Files\Malwarebytes
2019-09-17 21:13 - 2019-08-27 05:50 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-09-17 21:05 - 2019-09-17 21:08 - 066495960 _____ (Malwarebytes ) C:\Users\Pedraza\Downloads\mb3-setup-consumer-3.8.3.2965-1.0.625-1.0.12519.exe
2019-09-17 17:48 - 2019-09-17 17:48 - 000000031 _____ C:\Users\Pedraza\Desktop\Themes.BAT
2019-09-17 17:32 - 2019-09-17 17:32 - 000000000 ____D C:\Windows\system32\%LocalAppData%
2019-09-17 16:32 - 2019-09-17 16:32 - 000000000 ____D C:\Users\Pedraza\Nueva carpeta
2019-09-17 16:03 - 2019-09-17 16:03 - 000000000 ____D C:\Program Files (x86)\GUM7A2E.tmp
2019-09-17 12:42 - 2019-09-17 12:42 - 000002253 _____ C:\Users\Pedraza\Desktop\Google Chrome.lnk
2019-09-17 12:18 - 2019-09-27 15:49 - 000262144 _____ C:\Users\Pedraza\ntuser.man
2019-09-16 20:50 - 2019-09-16 20:50 - 000000000 ____D C:\Users\Pedraza\Gihosoft Android Data Recovery
2019-09-16 20:46 - 2019-09-16 20:46 - 000000000 ____D C:\Program Files\SAMSUNG
2019-09-16 20:37 - 2019-09-16 20:37 - 000000000 ____D C:\ProgramData\Samsung
2019-09-16 20:33 - 2019-09-16 20:41 - 000000000 ____D C:\Users\Pedraza\.android
2019-09-11 23:20 - 2019-09-11 23:21 - 000000000 ___DC C:\5541b24cb0ef1467f89ccc92fa2e
2019-09-10 19:37 - 2019-09-10 19:37 - 000000000 ____D C:\ProgramData\ALM
2019-09-10 15:29 - 2019-08-15 22:02 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2019-09-10 15:29 - 2019-08-15 21:56 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2019-09-09 20:29 - 2019-09-09 20:30 - 000000000 ____D C:\Users\Pedraza\AppData\LocalLow\Adobe
2019-09-09 20:29 - 2019-09-09 20:29 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2019-09-09 20:29 - 2019-09-09 20:29 - 000000000 ____D C:\ProgramData\ALM.BackupByIllustratorPortable
2019-09-09 20:09 - 2019-09-09 20:09 - 000000000 ____D C:\ProgramData\Adobe
2019-09-09 20:03 - 2019-09-18 17:06 - 000000000 ____D C:\Program Files (x86)\Illustrator CS6
2019-09-08 18:27 - 2019-09-17 12:17 - 000000000 ____D C:\Users\Pedraza\AppData\LocalLow\uTorrent
2019-09-07 13:20 - 2019-09-07 13:20 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe.BackupByIllustratorPortable
2019-08-25 17:32 - 2019-08-25 17:32 - 000000000 __HDC C:\Leawo_iOS_Backup_Temp_Folder_And_Ensure_This_Name_Is_Only_One_So_It_Is_Very_Long
2019-08-25 17:29 - 2019-08-25 17:30 - 000000000 ____D C:\ProgramData\Leawo
2019-08-25 17:29 - 2019-08-25 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Leawo
2019-08-25 17:26 - 2019-08-25 17:26 - 000000000 ____D C:\Program Files (x86)\Leawo
2019-08-20 13:04 - 2019-08-20 13:04 - 000000165 ____H C:\Users\Pedraza\Downloads\~$Lista02protecturbo EQUIPO NEUMATICO modifi 19-08 OK-convertido.xlsx
2019-07-17 17:06 - 2019-07-17 17:07 - 005044856 _____ C:\Windows\system32\FNTCACHE.DAT
2019-06-30 21:16 - 2019-06-30 21:17 - 001775130 _____ C:\Users\Pedraza\Downloads\MegaDownloader.zip
==================== Three months (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-27 15:21 - 2009-07-14 01:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-09-27 15:21 - 2009-07-14 01:45 - 000021280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-09-27 15:11 - 2017-12-21 07:52 - 000000000 _____ C:\Windows\SysWOW64\last.dump
2019-09-27 15:08 - 2009-07-14 02:08 - 000032554 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2019-09-27 15:08 - 2009-07-14 02:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-09-27 14:50 - 2017-12-28 12:07 - 000000392 ____H C:\Windows\Tasks\AVG EUpdate Task.job
2019-09-25 15:44 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\inf
2019-09-25 15:40 - 2015-07-12 13:59 - 000000000 ____D C:\Windows\Minidump
2019-09-18 23:35 - 2015-07-01 23:59 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-09-18 17:43 - 2017-11-21 15:07 - 000000000 ____D C:\Users\Pedraza\Desktop\Diseño Gráfico
2019-09-18 16:51 - 2019-04-02 13:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X4
2019-09-18 00:43 - 2017-12-18 13:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2019-09-17 21:15 - 2016-05-08 16:13 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-09-17 15:45 - 2017-12-28 15:00 - 000000474 __RSH C:\Users\Pedraza\ntuser.pol
2019-09-17 14:35 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\registration
2019-09-17 14:12 - 2017-01-12 21:02 - 000130560 ___SH C:\Users\Pedraza\Thumbs.db
2019-09-17 13:04 - 2009-07-14 00:20 - 000000000 ____D C:\Windows\PLA
2019-09-14 13:29 - 2015-12-18 02:59 - 001661458 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2019-09-14 13:29 - 2010-11-21 04:09 - 000751508 _____ C:\Windows\system32\perfh00A.dat
2019-09-14 13:29 - 2010-11-21 04:09 - 000160518 _____ C:\Windows\system32\perfc00A.dat
2019-09-14 13:28 - 2009-07-14 02:13 - 001661458 _____ C:\Windows\system32\PerfStringBackup.INI
==================== Files in the root of some directories ================
2016-12-26 15:02 - 2016-12-26 15:02 - 007680000 _____ () C:\Program Files (x86)\GUT29CE.tmp
2016-08-22 12:04 - 2016-08-22 12:04 - 007065600 _____ () C:\Program Files (x86)\GUT5D6C.tmp
2016-08-21 23:15 - 2016-08-21 23:15 - 007065600 _____ () C:\Program Files (x86)\GUTAF33.tmp
2016-06-02 13:10 - 2019-05-14 19:34 - 000000033 _____ () C:\Users\Pedraza\AppData\Roaming\AdobeWLCMCache.dat
2017-09-19 13:23 - 2017-11-20 14:21 - 000090349 _____ () C:\Users\Pedraza\AppData\Roaming\downloads.json
2016-12-27 21:46 - 2016-12-27 21:56 - 000000115 _____ () C:\Users\Pedraza\AppData\Roaming\LogFile.txt
2016-01-05 21:00 - 2016-02-21 16:33 - 000009216 _____ () C:\Users\Pedraza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-12 15:01 - 2015-08-12 15:01 - 000000000 _____ () C:\Users\Pedraza\AppData\Local\{124D4E24-BFA9-4A41-A096-B6F6B426E767}
2015-08-14 23:17 - 2015-08-14 23:17 - 000000000 _____ () C:\Users\Pedraza\AppData\Local\{8152E4D6-FFDB-47BF-9AB5-48B81B353353}
==================== SigCheckExt ================
2006-12-01 23:37 - 2006-12-01 23:37 - 000904704 ____C (Microsoft Corporation) C:\msdia80.dll
2015-12-30 20:05 - 1998-10-06 19:34 - 000327168 _____ (InstallShield Software Corporation, Inc.) C:\Windows\IsUn040a.exe
2015-09-05 05:09 - 2015-09-05 05:09 - 000105984 _____ (Beepa P/L) C:\Windows\system32\frapsv64.dll
2003-03-18 19:05 - 2003-03-18 19:05 - 000089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll
2001-01-30 04:33 - 2001-01-30 04:33 - 000028944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FM20ESP.DLL
2015-09-05 05:09 - 2015-09-05 05:09 - 000094208 _____ (Beepa P/L) C:\Windows\SysWOW64\frapsvid.dll
2003-03-18 21:20 - 2003-03-18 21:20 - 001060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2003-03-18 20:44 - 2003-03-18 20:44 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHS.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71CHT.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71DEU.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ENU.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ESP.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71FRA.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71ITA.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71JPN.DLL
2003-03-18 20:44 - 2003-03-18 20:44 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC71KOR.DLL
2003-03-18 21:12 - 2003-03-18 21:12 - 001047552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71u.dll
2012-03-12 20:56 - 2012-03-12 20:56 - 000947472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjava.dll
1999-05-23 20:07 - 1999-05-23 20:07 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msprpes.dll
2000-04-03 20:05 - 2000-04-03 20:05 - 000118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll
2000-04-03 17:52 - 2000-04-03 17:52 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll
2003-03-18 20:14 - 2003-03-18 20:14 - 000499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2012-02-02 15:57 - 2012-02-02 15:57 - 000344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll
2003-02-21 04:42 - 2003-02-21 04:42 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2002-02-04 02:43 - 2002-02-04 02:43 - 000082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll
1998-03-24 21:54 - 1998-03-24 21:54 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SCP32.DLL
1999-05-23 20:07 - 1999-05-23 20:07 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stdftes.dll
1999-05-23 20:07 - 1999-05-23 20:07 - 000119568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb6es.dll
1999-11-24 18:40 - 1999-11-24 18:40 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBAME.DLL
2006-10-26 13:45 - 2006-10-26 13:45 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WISPTIS.EXE
2015-09-21 14:32 - 2015-09-21 14:32 - 000003216 _____ C:\Windows\System32\Tasks\avastBCLRestart_chrome.exe
2019-09-27 15:19 - 2019-09-27 15:20 - 001615872 _____ (Farbar) C:\Users\Pedraza\Downloads\FRST64.exe
2019-09-25 15:09 - 2019-09-25 15:11 - 003328384 _____ (Nicolas Coolman) C:\Users\Pedraza\Downloads\ZHPCleaner.exe
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== BCD ================================
Administrador de arranque de Windows
----------------------------------
Identificador {bootmgr}
device partition=\Device\HarddiskVolume1
description Windows Boot Manager
locale es-ES
inherit {globalsettings}
default {current}
resumeobject {4715bec1-1ea5-11e5-9c3b-c324c92c6321}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Cargador de arranque de Windows
-----------------------------
Identificador {current}
device partition=C:
path \Windows\system32\winload.exe
description Windows 7
locale es-ES
inherit {bootloadersettings}
recoverysequence {4715bec3-1ea5-11e5-9c3b-c324c92c6321}
recoveryenabled Yes
osdevice partition=C:
systemroot \Windows
resumeobject {4715bec1-1ea5-11e5-9c3b-c324c92c6321}
nx OptOut
Cargador de arranque de Windows
-----------------------------
Identificador {4715bec3-1ea5-11e5-9c3b-c324c92c6321}
device ramdisk=[C:]\Recovery\4715bec3-1ea5-11e5-9c3b-c324c92c6321\Winre.wim,{4715bec4-1ea5-11e5-9c3b-c324c92c6321}
path \windows\system32\winload.exe
description Windows Recovery Environment
inherit {bootloadersettings}
osdevice ramdisk=[C:]\Recovery\4715bec3-1ea5-11e5-9c3b-c324c92c6321\Winre.wim,{4715bec4-1ea5-11e5-9c3b-c324c92c6321}
systemroot \windows
nx OptIn
winpe Yes
Reanudar tras hibernaci�n
-------------------------
Identificador {4715bec1-1ea5-11e5-9c3b-c324c92c6321}
device partition=C:
path \Windows\system32\winresume.exe
description Windows Resume Application
locale es-ES
inherit {resumeloadersettings}
filedevice partition=C:
filepath \hiberfil.sys
debugoptionenabled No
Herramienta de comprobaci�n de memoria de Windows
-------------------------------------------------
Identificador {memdiag}
device partition=\Device\HarddiskVolume1
path \boot\memtest.exe
description Herramienta de diagn�stico de memoria de Windows
locale es-ES
inherit {globalsettings}
badmemoryaccess Yes
Configuraci�n de EMS
--------------------
Identificador {emssettings}
bootems Yes
Configuraci�n del depurador
---------------------------
Identificador {dbgsettings}
debugtype Serial
debugport 1
baudrate 115200
Defectos de RAM
---------------
Identificador {badmemory}
Configuraci�n global
--------------------
Identificador {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Configuraci�n del cargador de arranque
------------------------------------
Identificador {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Configuraci�n de hipervisor
-------------------
Identificador {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Reanudar la configuraci�n del cargador
--------------------------------------
Identificador {resumeloadersettings}
inherit {globalsettings}
Opciones de dispositivo
-----------------------
Identificador {4715bec4-1ea5-11e5-9c3b-c324c92c6321}
description Ramdisk Options
ramdisksdidevice partition=C:
ramdisksdipath \Recovery\4715bec3-1ea5-11e5-9c3b-c324c92c6321\boot.sdi
LastRegBack: 2016-03-11 04:18
==================== End of FRST.txt ============================